Skip to content
Noroxi

sourcegraph records

11 published records for vendor sourcegraph.

All records

11 records
  • Code Injection in Sourcegraph

    HighCVSS 8.8WeaponizedEPSS 74%

    sourcegraph · sourcegraphFeb 18, 2022

  • Overwrite of builtin Cody commands facilitates RCE

    HighCVSS 8.8No exploitEPSS 1%

    sourcegraph · codyOct 31, 2023

  • Sourcegraph vulnerable to Comand Injection via gitserver

    HighCVSS 7.8No exploitEPSS 3%

    sourcegraph · sourcegraphNov 22, 2022

  • Incorrect default permissions found in Sourcegraph

    HighCVSS 7.2No exploitEPSS 2%

    sourcegraph · sourcegraphNov 22, 2022

  • Remote Code Execution in sourcegraph

    HighCVSS 7.2No exploitEPSS 1%

    sourcegraph · sourcegraphMay 5, 2022

  • Side-channel attack in Sourcegraph

    MediumCVSS 6.5No exploitEPSS 1%

    sourcegraph · sourcegraphDec 13, 2021

  • Side-channel attack in Sourcegraph Code Monitors

    MediumCVSS 6.5No exploitEPSS 1%

    sourcegraph · sourcegraphFeb 15, 2022

  • Sourcegraph before 3.15.1 has a vulnerable authentication workflow because of improper validation in the SafeRedirectURL method in cmd/front

    MediumCVSS 6.1No exploitEPSS 1%

    sourcegraph · sourcegraphApr 30, 2020

  • Low risk information disclosure in Sourcegraph

    MediumCVSS 4.3No exploitEPSS 1%

    sourcegraph · sourcegraphAug 2, 2021

  • Indirect Object Access in Sourcegraph Code Monitoring

    MediumCVSS 4.3No exploitEPSS 0%

    sourcegraph · sourcegraphAug 1, 2022

  • Unauthorized overwriting of saved searches in Sourcegraph

    MediumCVSS 4.3No exploitEPSS 0%

    sourcegraph · sourcegraphAug 1, 2022